Logpoint develops a security information and event management (SIEM) platform with integrated security orchestration, automation, and response (SOAR) capabilities, alongside authentication and log-normalization components that collectively form a centralized security operations infrastructure. The vulnerability surface concentrates across a narrow product set but reaches significant prominence given the platform's deployment depth in security operations centers and its upstream position in security data pipelines. The recurring weakness classes reflect the platform's web-facing nature and data-handling role: cross-site scripting and command-injection flaws recur across the SIEM interface and normalizer components, while missing authentication controls and server-side request forgery issues indicate exposure in critical functions that process external log sources and orchestrate downstream actions. Defenders should treat this vendor's advisories as operationally sensitive, since flaws in a SIEM platform can affect the visibility and integrity of security monitoring itself, and privilege the patching of internet-facing management interfaces. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Logpoint over time
Signals from CVEs in this vendor scope (25 CVEs).
25 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-66360HIGH An issue was discovered in Logpoint before 7.7.0. An improperly configured access control policy exposes sensitive Logpoint internal service (Redis) information to li-admin users. | Nov 28, 2025 | 8.8 | 27 | NO | NO |
CVE-2024-33857CRITICAL An issue was discovered in Logpoint before 7.4.0. Due to a lack of input validation on URLs in threat intelligence, an attacker with low-level access to the system can trigger Serv | May 7, 2024 | 9.6 | 25 | NO | NO |
CVE-2022-48684HIGH An issue was discovered in Logpoint before 7.1.1. Template injection was seen in the search template. The search template uses jinja templating for generating dynamic data. This co | Apr 27, 2024 | 8.8 | 24 | NO | NO |
CVE-2025-54317HIGH An issue was discovered in Logpoint before 7.6.0. An attacker with operator privileges can exploit a path traversal vulnerability when creating a Layout Template, which can lead to | Jul 20, 2025 | 8.4 | 22 | NO | NO |
CVE-2024-48950HIGH An issue was discovered in Logpoint before 7.5.0. An endpoint used by Distributed Logpoint Setup was exposed, allowing unauthenticated attackers to bypass CSRF protections and auth | Nov 7, 2024 | 7.5 | 22 | NO | NO |
CVE-2025-66359MEDIUM An issue was discovered in Logpoint before 7.7.0. Insufficient input validation and a lack of output escaping in multiple components leads to a cross-site scripting (XSS) vulnerabi | Nov 28, 2025 | 6.1 | 21 | NO | NO |
CVE-2024-56086HIGH An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads in Report Templates. These are executed when the backup process is initiated, leading to R | Dec 16, 2024 | 7.1 | 21 | NO | NO |
CVE-2024-56084HIGH An issue was discovered in Logpoint UniversalNormalizer before 5.7.0. Authenticated users can inject payloads while creating Universal Normalizer. These are executed, leading to Re | Dec 16, 2024 | 7.1 | 21 | NO | NO |
CVE-2024-48953HIGH An issue was discovered in Logpoint before 7.5.0. Endpoints for creating, editing, or deleting third-party authentication modules lacked proper authorization checks. This allowed u | Nov 7, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-48951HIGH An issue was discovered in Logpoint before 7.5.0. Server-Side Request Forgery (SSRF) on SOAR can be used to leak Logpoint's API Token leading to authentication bypass. | Nov 7, 2024 | 7.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (25 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Logpoint.
Media articles that mention a CVE ID that affects a product developed by Logpoint — matched by CVE ID, not by vendor name.